Skip to content
This repository was archived by the owner on Nov 17, 2025. It is now read-only.

Security: DLinRT-eu/website

Security

SECURITY.md

Security Policy

Table of Contents

  1. Reporting Vulnerabilities
  2. Scope
  3. Out of Scope
  4. Disclosure Policy
  5. Thank you!

Reporting Vulnerabilities

We take security, accuracy, and integrity very seriously.

If you discover a security vulnerability or any critical issue that could compromise:

  • User data
  • Website stability
  • Information authenticity
  • Third-party copyrights

Please report it confidentially instead of publicly disclosing it.

How to Report

  • Email: m.maspero at umcutrecht.nl
  • Alternatively, open a private GitHub Security Advisory if available for this repository.

Please include:

  • A clear description of the vulnerability.
  • Steps to reproduce (if applicable).
  • Any suggested fixes or mitigation ideas.

We will respond within 5 business days and aim to resolve any verified security issues promptly.


Scope

This project consists mainly of public, factual information.
However, security reports are in-scope if they involve:

  • Unauthorized access or modification of the repository
  • Malicious code or dependency vulnerabilities
  • Leakage of confidential contributor information
  • Data integrity risks (e.g., tampering of commercial product descriptions)
  • Misinformation that could lead to clinical safety risks

Out of Scope

The following are not considered security vulnerabilities:

  • Typos, broken links, or formatting issues
  • Disagreements over interpretation of technical data
  • Lack of endorsements or certifications from manufacturers

(These can be reported via regular GitHub Issues.)


Disclosure Policy

We practice coordinated disclosure:

  • We will acknowledge receipt of your report.
  • We will work privately with you to understand and resolve the issue.
  • We will publicly disclose security incidents only after a fix is available.
  • You will be credited for responsible disclosure if desired.

Thank you!

We greatly appreciate your help in making this project safe, reliable, and trustworthy for the entire radiotherapy community.


There aren’t any published security advisories